Only allow 0-9 A-F character set for users' passwords to disguise their hashing method from attackers (and auditors!) when stored in your user database.
-
-
Replying to @SecureTips @jedisct1
Why store hashes in hex at all? It’s just inefficient. Store as binary, use as base62. Convert to hex if needed.
2 replies 0 retweets 1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.